cvedb.io
CVE-2025-64433
MEDIUM · CVSS 6.5
EPSS exploitation probability: 0%
Published 2025-11-07T23:15:45.537 · Last modified 2026-06-17T09:54:22.600

Summary

KubeVirt is a virtual machine management add-on for Kubernetes. Prior to 1.5.3 and 1.6.1, a vulnerability was discovered that allows a VM to read arbitrary files from the virt-launcher pod's file system. This issue stems from improper symlink handling when mounting PVC disks into a VM. Specifically, if a malicious user has full or partial control over the contents of a PVC, they can create a symbolic link that points to a file within the virt-launcher pod's file system. Since libvirt can treat regular files as block devices, any file on the pod's file system that is symlinked in this way can be mounted into the VM and subsequently read. Although a security mechanism exists where VMs are executed as an unprivileged user with UID 107 inside the virt-launcher container, limiting the scope of

Affected products

kubevirt — kubevirt

Does this affect you?

Add your gear to cvedb and we'll alert you only when kubevirt ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.